VYPR
Unrated severityOSV Advisory· Published Dec 18, 2025· Updated Dec 19, 2025

Kibana Allocation of Resources Without Limits or Throttling

CVE-2025-68389

Description

Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana can allow a low-privileged authenticated user to cause Excessive Allocation (CAPEC-130) of computing resources and a denial of service (DoS) of the Kibana process via a crafted HTTP request.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.